Security Advisory

CVE-2024-27705

7.6
HIGH

Vulnerability Description

Cross Site Scripting vulnerability in Leantime v3.0.6 allows attackers to execute arbitrary code via upload of crafted PDF file to the files/browse endpoint.
Published Date April 3, 2024
Official Source NIST NVD Advisory